Blog

ISO 27001:2022 Certified: Reinforcing Our Security Commitment

Teodora Vilceanu

July 8, 2025

For us, security has always been a mindset, not just a checkbox. That’s why we’re proud to share that we renewed our ISO 27001 certification, now aligned with the updated 2022 standard.
This isn’t just a stamp of approval. It’s a clear signal that our systems, policies, and daily practices meet one of the world’s highest standards for safeguarding information. It reflects our full commitment to protecting data, empowering clients, and staying ahead of new challenges.

But what exactly does “ISO certified” mean - and why should it matter to you?

What is ISO?

The International Organization for Standardization (ISO) publishes universal guidelines that help companies operate securely and efficiently. Whether the focus is data security or quality management systems, these standards let global operations speak a common language of safety and reliability.
By setting clear benchmarks across industries, ISO helps businesses strengthen internal processes, reduce risk, and build trust across borders.

A Commitment to Information Security

Achieving an ISO certification requires a thorough assessment where independent auditors evaluate a company’s processes to ensure they meet strict criteria and foster continuous improvement.
For forward-thinking businesses, this commitment to ISO compliance not only strengthens operational excellence but also builds customer trust and simplifies adherence to regulatory requirements across markets.

What Is ISO 27001?

ISO 27001 is the gold standard for establishing and maintaining an information security management system (ISMS).
It provides a clear framework for risk management, helping protect sensitive data across people, technology, and processes.

To meet the 2022 requirements, organizations must identify risks, document controls, and continuously monitor effectiveness - all while fostering a culture of security excellence.

What’s New with ISO 27001:2022?

The 2022 update brings ISO 27001 in line with how today’s businesses actually operate - with cloud platforms, hybrid work, and global teams increasing both opportunity and risk. It introduces clearer structure, modernized controls, and stronger emphasis on human‑centric security.

Graph showcasing what ISO is, what it proves about Roca Networks, and what the benefits are for Roca's clients

Key updates include:

  • Reorganized control categories: Controls are now grouped under four themes - Organizational, People, Physical, and Technological -  making the framework easier to implement and scale.
  • New controls for emerging threats: Eleven new additions address modern challenges like threat intelligence, secure coding, cloud monitoring, and data masking.
  • Smarter risk management: The update promotes context-aware safeguards tailored to your specific environment, rather than a one-size-fits-all checklist.
  • Human-first security culture: A strong security posture requires informed people. The update reinforces the need for training, awareness, and shared responsibility across the company.

These changes raise the bar for what effective, forward-looking security looks like. Our renewed ISO/IEC 27001:2022 certification confirms that our systems - and our culture - are built to meet that bar, keeping customer data protected as risks evolve.

Our Certification Journey

Renewing our ISO 27001 certification wasn’t automatic: it required a coordinated, company-wide effort to meet the updated 2022 standard. Across teams, we strengthened controls, updated processes, and reinforced our commitment to information security at every level.

  • Operations implemented tighter access controls and improved change documentation.
  • Our leadership reviewed and strengthened business continuity and incident response plans.
  • Every employee completed updated cybersecurity awareness training, reinforcing a shared commitment to information security.

This achievement validates our security framework against a globally recognized standard, ensuring our practices are consistently applied, monitored, and continuously improved.

The Eleven New Controls for ISO 27001: 2022

Why This Matters for Our Clients

Partnering with an ISO / IEC 27001 2022-certified company means more than just compliance - it’s a certification reinforcing commitment to security while driving real, measurable business value:

  • Stronger data protection: We used layered controls - encryption, data masking, network segmentation - to protect customer data, intellectual property, and other sensitive information from unauthorized access or loss.
  • Regulatory confidence: Because ISO 27001 aligns with GDPR, NIS2, and other international standards, partnering with us streamlines audits and simplifies compliance across all your regions of operation.
  • Transparency & trust: Detailed policies, access logs, and continuous monitoring give you full visibility into our risk management program, reinforcing your own reputation for reliability and protecting data.
  • Resilience & continuity: Certified change‑management and incident‑response playbooks keep your services running even when cyber threats or operational hiccups strike. This ensures maximized uptime and business continuity.
  • Continuous improvement: Our PDCA (Plan‑Do‑Check‑Act) cycle ensures we’re always refining controls and adopting a proactive approach to stay ahead of new challenges, driving operational excellence and long‑term value.

Choosing a provider with ISO/IEC 27001:2022 certification means working with a company that’s proven its commitment to security and quality. This lets you focus on growing your business, knowing your data and reputation are in good hands.

Commitment You Can Count On

We don’t view certification as a finish line, but as we see it as an ongoing responsibility. Every policy we implement, every risk we assess, and every improvement we make is part of our dedication to security excellence.

In a world where cyber threats grow more complex, we’re not standing still. We’re adapting, evolving, and innovating to offer stronger protection, more transparency, and trusted delivery. Whether you’re a customer, partner, or stakeholder, our renewed ISO 27001:2022 certification is a sign of the quality management systems behind the work we do - and the trust you place in us.